Skip to content

[CodeScanning #5] go/clear-text-logging in pkg/llmproxy/executor/antigravity_executor.go:216 #179

@KooshaPari

Description

@KooshaPari

Source alert: https://github.com/KooshaPari/cliproxyapi-plusplus/security/code-scanning/5

Rule:

  • ID: go/clear-text-logging
  • Description: Clear-text logging of sensitive information
  • Severity: high

Location:

  • Ref: refs/heads/main
  • File: pkg/llmproxy/executor/antigravity_executor.go
  • Line: 216

Message:
Sensitive data returned by an access to apiKeyModelAlias flows to a logging call.

Scope:

  • Reproduce and confirm reachability
  • Implement fix with tests
  • Close code-scanning alert in GitHub

Metadata

Metadata

Assignees

No one assigned

    Labels

    code-scanningGitHub code scanning alert trackingcodeqlCodeQL alertsecuritySecurity issue

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions